300-615 · Question #295
Refer to the exhibit. A Cisco Nexus 9000 Series Switch must be configured to use only TACACS+ servers for default authentication. The engineer notices that the activity fails to run as expected…
The correct answer is A. aaa authentication login default group ISE-TACACS none. By appending none you remove any fallback method, so authentication is attempted only against the ISE-TACACS server group and will fail if the TACACS+ servers are unreachable. The correct command is aaa authentication login default group ISE-TACACS none.
Question
Refer to the exhibit. A Cisco Nexus 9000 Series Switch must be configured to use only TACACS+ servers for default authentication. The engineer notices that the activity fails to run as expected. Which code snippet resolves the issue?
Exhibits
Options
- Aaaa authentication login default group ISE-TACACS none
- Baaa authentication login default group ISE-TACACS
- Caaa authentication login default group ISE-TACACS local
- Daaa authentication login default group ISE-TACACS Local none
How the community answered
(69 responses)- A81% (56)
- B3% (2)
- C4% (3)
- D12% (8)
Explanation
By appending none you remove any fallback method, so authentication is attempted only against the ISE-TACACS server group and will fail if the TACACS+ servers are unreachable. The correct command is aaa authentication login default group ISE-TACACS none.
Topics
Community Discussion
No community discussion yet for this question.

